Fortinet's ATP Security Fabric Approach
Fortinet FortiSandbox Solution automates protection of your organization from 0-day attacks across various threat vectors.
Watch NowFor previous generations of viruses that were unsophisticated and low in volume, antivirus tools were sufficient to provide reasonable protection with their database of signatures.
However, today’s modern malware entails new techniques such as use of exploits. Exploiting a vulnerability in a legitimate application can cause anomalous behavior and it’s this behavior that attackers take advantage of to compromise computer systems. The process of an attack by exploiting an unknown software vulnerability is what is known as a zero-day attack aka 0-day attack, and before sandboxing there was no effective means to stop it.
A malware sandbox, within the computer security context, is a system that confines the actions of an application, such as opening a Word document, to an isolated environment. Within this safe environment the sandbox analyzes the dynamic behavior of an object and its various application interactions in a pseudo-user environment and uncovers any malicious intent. So if something unexpected or wanton happens, it affects only the sandbox and not the other computers and devices on the network. In parallel, any malicious intent is captured, leading to an alert and relevant threat intelligence generated to stop this zero-day attack.
Typical characteristics found in a malware sandbox:
FortiSandbox broad form factor offering including physical, virtual appliance to public cloud and as a hosted service that supports various deployment options to fit any environment.
View by:
Form Factor |
1 RU |
Effective real-world throughput (files/hr) |
600 |
Ports |
4x GE RJ45 ports |
Form Factor |
1 RU |
Effective real-world throughput (files/hr) |
1,400 |
Ports |
4x GE RJ45 ports, 4x GE SFP slots |
Form Factor |
2 RU |
Effective real-world throughput (files/hr) |
2,400 |
Ports |
4x GE RJ45 ports, 2x 10 GE SFP+ slots |
Form Factor |
2 RU |
Effective real-world throughput (files/hr) |
6,720 |
Ports |
4x GE RJ45 ports, 2x 10 GE SFP+ slots |
Effective real-world throughput (files/hr) |
Hardware dependent |
Ports |
6 (minimum) virtual network interfaces |
Effective real-world throughput (files/hr) |
20,000 |
Ports |
6 (minimum) virtual network interfaces |
As businesses move to the cloud, it is imperative to extend a seamless security infrastructure to protect workloads and assets in the cloud against sophisticated threats. FortiSandbox native support of public cloud includes Amazon Web Services (AWS) and Microsoft Azure, allows organizations to build a comprehensive cloud security architecture that integrates FortiSandbox (sandbox) with FortiGate (NGFW), FortMail (SEG), FortiWeb (WAF), FortiClient (EPP), FortiSIEM (SIEM), and 3rd party solutions.
AWS Marketplace:
Azure Marketplace:
FortiSandbox Cloud offers an alternate deployment option to an on-premise FortiSandbox for organizations searching for a turnkey solution. It delivers the same rapid detection and automated response, but from the cloud. This provides unlimited flexibility to integrate sandbox analysis of zero-day threats to any security control e.g. firewall, secure email gateway, endpoint protection, and others, to automate threat protection across multiple locations.
To learn more, please click here.
View by:
View by:
Fortinet is proud to announce that, for the second consecutive year, we have been recognized as a Customers’ Choice in the April 2021 Gartner Peer Insights ‘Voice of the Customer’: Network Firewalls report.
The Gartner Peer Insights Customers’ Choice is a recognition of vendors in this market by verified end-user professionals, taking into account both the number of reviews and the overall user ratings. To ensure fair evaluation, Gartner maintains rigorous criteria for recognizing vendors with a high customer satisfaction rate.
As an integral part of the Fortinet Security Fabric, our FortiGate Next-Generation Firewalls (NGFWs) enable a Security-driven Networking approach to protect any network edge and any user at scale, while ensuring high performance. And powered by Fortinet’s custom built Security Processing Units (SPUs), FortiGate NGFWs offer the industry’s highest security compute rating.
With FortiGate NGFWs, organizations can:
Manage internal and external security risks: FortiGate NGFWs provide complete visibility into applications, threats, and networks to keep operations running and ensure business continuity. Further, network-based segmentation stops lateral threats and protects against application vulnerabilities with enhanced AI/ML powered by FortiGuard services to thwart cyberattacks.
Achieve optimal ROI through consolidation: FortiGate NGFWs seamlessly converge and accelerate networking and multiple security functions into a single solution to reduce cost and optimize user experience.
Improve operational efficiency: Fortinet’s Fabric Management Center streamlines operations across Security Fabric and extends beyond to 400+ ecosystem integrations with a consolidated view to simplify enterprise-wide workflows.
Here is a small sampling of the top reviews posted by Fortinet customers on the Gartner Peer Insights website*:
★★★★★
"Stable and Reliable Firewall" — Cloud Infrastructure Engineer in the Finance Industry, Firm Size: 50M-250M USD
Overall user rating: 5/5 stars
"We use FortiGate in our company's HQ and many of the branches across the country. For a company that deals mainly with sensitive customers data, we needed to make sure that our networks are protected by the best firewall solution that's available (also thanks to Gartner reviews)."
★★★★★
“Tons Of Value in a Small Package” — Director of IT in the Retail Industry, Firm Size: 500M-1B USD
Overall user rating: 5/5 stars
"We decided to deploy the full Fortinet network stack including FortiGate 60E's to all 90+ of our retail locations. We further deployed FortiGate 200E's in HA pairs to all datacenter locations. These UTM appliances are some of the best and most feature rich I have ever used."
★★★★★
“Delivered What We Were Looking For” — VP, Deputy CIO in the Finance Industry, Firm Size: 1B-3B USD
Overall user rating: 5/5 stars
“Our experience with implementing this solution has been very satisfactory. We went with Fortinet for price and simplicity and have received what we were looking for."
★★★★★
"Strong Firewall Solution That Protects Your Business Systems" — Programmer in the Finance Industry, Firm Size: 50M – 250M USD
Overall user rating: 5/5 stars
"Very easy to implement and configure, especially if you already have other Fortinet products in your network they all bind in to the one "security fabric" and provide a great overview of all your network devices and events in your network. Also the price is superb for such product."
★★★★★
"NGFW That Needs To Be In Your Company" — PHP Backend Developer in the Finance Industry, Firm Size: 50M – 250M USD
Overall user rating: 5/5 stars
"FortiGate NGFW is the main guard of our IT infrastructure. All network goes through it. It can easily handle all our traffic. Now, most of the employees are working from home so VPN is getting hit really bad, but that is not a problem for FortiGate."
FortiSandbox employs FortiGuard Threat Intelligence including an extended AV signature set, IPS, Web Filtering, emerging malware query, and sandbox engine updates to improve the robustness of threat detection as well as accelerate threat analysis and verdict determination.
FortiGuard Antivirus protects against the latest viruses, spyware, and other content-level threats. It uses industry-leading advanced detection engines to prevent both new and evolving threats from gaining a foothold inside your network and accessing its invaluable content.
FortiGuard IPS protects against the latest network intrusions by detecting and blocking threats before they reach network devices.
Protects your organization by blocking access to malicious, hacked, or inappropriate websites.
FortiSandbox provides integration with many leading IT vendors as part of the Fortinet Security Fabric. Below is a list of current FortiSandbox Fabric-Ready API Alliance Partners:
AWS services are trusted by more than a million active customers around the world – including the fastest growing startups, largest enterprises, and leading government agencies – to power their infrastructures, make them more agile, and lower costs.
Learn more on the Fortinet-AWS alliance
ATAR Labs builds next-generation SOAR platform ATAR. Together with Fortinet, SOC teams become more agile and respond to complex threats and defend their infrastructure. Automatic processes deployed and orchestrated from ATAR, and enforcement, and detection from Fortinet creates an integrated operation to achieve a secure environment.
Attivo Networks is an award-winning innovator in cyber security defense. As the leader in deception-based threat detection technology, Attivo empowers continuous threat management using dynamic deceptions for the real-time detection, analysis, and accelerated response to cyber incidents.
D3 Security's award-winning SOAR platform seamlessly combines security orchestration, automation and response with enterprise-grade investigation/case management, trend reporting and analytics. With D3's adaptable playbooks and scalable architecture, security teams can automate SOC use-cases to reduce MTTR by over 95%, and manage the full lifecycle of any incident or investigation.
DefendEdge’s SiON, an Employee Threat Management platform, delivers machine learning intelligence to empower customers with enhanced protection against advanced persistent threats in today’s ever-evolving cybersecurity landscape. Together with Fortinet’s Security Fabric, SiON can detect, prevent, respond, and predict end user anomalous or malicious activities.
FileOrbis supports digital transformation by increasing productivity while working remotely, reducing security and compliance risks, and eliminating the maintenance cost of dispersed, disconnected file environments. The platform lets users access, use and share their files easily and completely secured by integrations with Fortinet solutions.
Gigamon provides active visibility into physical and virtual network traffic, enabling stronger security, and superior performance.
Microsoft is the leading platform and productivity company for the mobile-first, cloud-first world, and its mission is to empower every person and every organization on the planet to achieve more.
Nutanix makes infrastructure invisible, elevating IT to focus on the applications and services that power their business. The Nutanix enterprise cloud platform leverages web-scale engineering and consumer-grade design to natively converge compute, virtualization and storage into a resilient, software-defined solution that delivers any application at any scale.
SentinelOne is shaping the future of endpoint security with an integrated platform that unifies the detection, prevention and remediation of threats initiated by nation states, terrorists, and organized crime. SentinelOne’s unique approach is based on deep inspection of all system processes combined with innovative machine learning to quickly isolate malicious behaviors, protecting devices against advanced, targeted threats in real time.
Sonpo helps clients with security, development and integration of applications and systems, ensures operation and service of their cyber infrastructure. Sonpo integration with Fortinet provides a unique safe solution to exchange files of any size any type secured by Sandbox Zero-day Threat Protection.
VMware is a global leader in cloud infrastructure and business mobility.
Votiro is an award-winning company specialized in eliminating file borne attacks carried by email attachments and web downloads. Powered by Zero-Trust CDR technology, Votiro and Fortinet provide comprehensive security, higher throughput and increased productivity while reducing load and operational cost for end users.
Fortinet FortiSandbox Solution automates protection of your organization from 0-day attacks across various threat vectors.
Watch Now
Interested in learning more with hands-on exercises? Come join us in our Fast Track event featuring FortiSandbox. Register here.
Breach Prevention Systems Test Report. In Q1 2019 NSS Labs performed an independent test of the Fortinet FortiGate 500E v6.0.3 + FortiClient v6.0.3.6219 + FortiSandbox v3.0.2 (AWS BYOL)
ICSA Labs tested the Fortinet Advanced Threat Protection Solution (ATP) for 33 days during Q3 2020 to determine how well it detected new and little-known malicious threats.
Sandbox | AV | |
0-day Malware | Yes | No |
Type of malware detection | Known, polymorphic, unknown | Known and polymorphic |
Malware analysis | Static and Dynamic/Behavior | Signature-based and Static |
Automated breach protection
Improved efficacy and performance
Broad integration
Unified IT-OT zero-day threat protection
Accelerated threat investigation
Independently top-rated
Advanced training for security professionals, technical training for IT professionals, and awareness training for teleworkers.
Learn More